Padmi
Con Edison logo
Con Edison

electric utility · gas utility

Senior Endpoint Security Engineer

New YorkPosted 2 months ago
CybersecurityUnspecified
Apply at Con Edison

Opens the source posting on ejcu.fa.us6.oraclecloud.com

Source description

About the role

View original

Required Education/Experience Master's Degree and with 2 years of relevant experience IT or Information security or Bachelor's Degree and with 3 years of relevant experience IT or Information security or Associate's Degree and with 5 years of relevant experience IT or Information security or High School Diploma/GED and with 6 years of relevant experience IT or Information security.

Preferred Education/Experience Master's Degree Cybersecurity, Computer Engineering, Computer Science, Information Systems Security, Information Technology and 2 years in Information security or Network Security in a senior technical role and experience engineering, implementing, administering, or supporting endpoint security technologies such as antivirus/anti-malware (AV), endpoint detection and response (EDR), extended detection and response (XDR), cyber asset attack surface management (CASM), vulnerability management, and configuration management. Hands-on experience configuring endpoint security policies, deployment standards, exclusions, device control, application control, data loss prevention, endpoint telemetry, and related endpoint protection controls. Experience assessing, testing, piloting, deploying, and operationalizing endpoint security solutions in enterprise environments. Bachelor's Degree Cybersecurity, Computer Engineering, Computer Science, Information Systems Security, Information Technology and 3 years in Information security or Network Security in a senior technical role and experience managing endpoint security operations, including AV, EDR, XDR, vulnerability management, configuration management, device control, endpoint telemetry, and related security controls. Experience supporting endpoint security deployments, upgrades, troubleshooting, health monitoring, coverage validation, compliance reporting, and remediation activities. Experience integrating endpoint security telemetry with monitoring, SIEM, incident response, and operational workflows preferred.

Relevant Work Experience Hands-on experience engineering, implementing, and administering enterprise endpoint security platforms across workstation, server, and operational technology endpoint environments, required. Experience implementing and managing endpoint protection, endpoint detection and response, anti-malware, device control, and related endpoint security controls, required. Knowledge of endpoint security policy management, role-based administration, device grouping, policy enforcement, and secure configuration baselines, required. Experience integrating endpoint telemetry, alerts, and security events with SIEM, monitoring, and incident response processes, required. Understanding of endpoint operating systems, endpoint networking, identity integration, and enterprise device management concepts, required. Experience configuring endpoint security policies, exclusions, prevention controls, detection rules, deployment rings, and operational standards, required. Strong understanding of endpoint security architecture, attack techniques, malware prevention, ransomware defense, and secure endpoint configuration., required. Experience collaborating with desktop, server, infrastructure, operations, and cyber defense teams for endpoint deployments, upgrades, troubleshooting, and remediation, required. Experience with endpoint telemetry collection, event analysis, security monitoring, and incident investigation support, required. Experience performing threat hunting and detection engineering, including developing, tuning, and validating detection logic based on endpoint telemetry, SIEM events, threat intelligence, and attacker tactics, techniques, and procedures, required. Experience implementing endpoint security best practices and providing technical guidance to infrastructure, operations, and support teams, required. Familiarity with endpoint inventory, software control, removable media control, certificate usage, and endpoint compliance reporting, required. Demonstrated experience leading technical workstreams, endpoint security initiatives, or project groups, preferred. Experience securing Windows, Linux, macOS, server, or operational technology endpoint environments preferred. Experience evaluating, piloting, and deploying new endpoint security capabilities to address evolving threats and business requirements, preferred. Experience integrating endpoint security automation into operational workflows using enterprise management, scripting, or configuration management tools, preferred.

Skills and Abilities Demonstrated analytical skills

  • Strong verbal communication and listening skills Develops and delivers effective presentations

Licenses and Certifications Driver's License Required Other: GSEC, GCIH, CEH, or equivalent cybersecurity certification. Preferred Other: Microsoft SC-200, Microsoft SC-300, Microsoft 365 Certified: Endpoint Administrator Associate, CrowdStrike Certified Falcon Administrator, Tanium Certified Operator, GIAC Certified Enterprise Defender(GCED), or equivalent endpoint security certification. Preferred

Physical Demands Ability to push, pull, and lift up to 25 pounds Sit or stand to answer a phone for the duration of the workday

Additional Physical Demands The selected candidate will be assigned a System Emergency Assignment (i.e., an emergency response role) and will be expected to work non-business hours during emergencies, which may include nights, weekends, and holidays. The selected candidate will be assigned a System Emergency Assignment (i.e., an emergency response role) and will be expected to work non-business hours during emergencies, which may include nights, weekends, and holidays.

One address, no account. We’ll tell you when matching roles go live.

More at Con Edison

Related open roles

View all roles